Error » Security Error » Security News » ArcSight Announces New PCI Compliance Knowledge Base and Availability of Research Rep

Security News The Latest Computer Security News

Post New Thread Reply
  ArcSight Announces New PCI Compliance Knowledge Base and Availability of Research Rep
LinkBack Thread Tools Display Modes
Old 07-Apr-2008, 06:00 AM   #1 (permalink)
Fixed Error!
 
newsprovider's Avatar

Posts: 207
Join Date: Mar 2008
Rep Power: 1 newsprovider is on a distinguished road

IM:
Default ArcSight Announces New PCI Compliance Knowledge Base and Availability of Research Rep

ArcSight Announces New PCI Compliance Knowledge Base and Availability of Research Report
The PCI Knowledge Base, launched by PCI Security Vendor Alliance and sponsored by ArcSight, lets organisations share knowledge about and experience with PCI compliance
London, UK – 7th April, 2008 – ArcSight, Inc. (Nasdaq: ARST), a leading global provider of compliance and security management solutions that protect enterprises and government agencies, today announced the availability of a new PCI (Payment Card Industry) Knowledge Base and the findings of a recently fielded PCI research report. The PCI Knowledge Base and research programme were launched by the PCI Security Vendor Alliance. The Knowledge Base programme allows merchants, assessors, bankers, card processors, security vendors and PCI consultants to anonymously share information online on how to become PCI compliant. The findings of the current research report highlight the trends and statistics that have emerged as companies have gone through the process of becoming PCI compliant. ArcSight supported the collection of the data and is a platinum member of the PCI Security Vendor Alliance.
The PCI Knowledge Base contains more than 1,200 separate anonymous comments from merchants, assessors, bankers, card processors, security vendors and PCI consultants, as well as advice from a panel of approximately 30 experts. Visitors to the research programme’s web site can glean findings that include information regarding best practices, lessons learned, experiences, industry trends and more.
“ArcSight supports the research programme as part of our efforts to help companies secure their confidential data and continuously comply with PCI,” said Reed Henry, senior vice president of marketing and business development of ArcSight. “The PCI Knowledge Base is a valuable resource for anyone who wants to learn about PCI compliance and understand how companies have successfully achieved compliance.”
PCI Alliance Research Director David Taylor identified the three most important findings of the programme:
· Many companies have not yet deployed an overarching monitoring and management solution to derive the full benefit of PCI compliance. “The thing that crops up over and over again is that many companies are buying products in order to achieve compliance, but they don’t have the time to manually review all the logs and data which these tools generate,” said Taylor. “They’re overwhelmed by the volume of security data and they don’t have the resources to properly review it. These companies are looking for automated solutions to deal with these issues.”
· Most companies pursue a checklist approach to PCI compliance. The requirement to have 100 percent of PCI controls in place tends to promote the view that all controls are essentially equal. What differentiates the leading-edge companies that are members of the PCI Knowledge Base is that they focus on risk and compliance management across all 12 PCI requirements and use identity monitoring solutions and SIEM platforms to monitor who is doing what and when with which sensitive data.
· Best-in-class companies have achieved operational compliance vs. paper compliance. Best-in-class companies in the Knowledge Base have made complying with PCI, including the automated monitoring of access controls and enforcement, part of their day-to-day operations. The paper checkbox approach has left other companies exposed to threats due to failure to keep up with the demand to manually review logs.
PCI Knowledge Base provides real-world information about PCI compliance
The PCI Knowledge Base shares merchants’ knowledge and experience of PCI compliance anonymously with other merchants as well as with assessors, banks and vendors. Visitors to the PCI Knowledge Base can benefit from their experience, finding out what works, best practices, lessons learned and more.
Following is a sample of the real-world information, advice and experience in the PCI Knowledge Base:
· “We found we were opening over 60 trouble tickets per month, and closing only five of them. Some of these trouble tickets could be potential security breaches. . . If we don't automate this process or get some help, our security management will be come less effective with each passing month.”
“The best advice I can give others is that they need to reduce the number of places they store data, and eliminate the ability of most persons to copy the data or distribute it. Merely having a policy against it is a small step. Eliminating copies and eliminating the copying functionality are the real controls that companies need.”
To learn more about PCI Compliance, please visit PCI Knowledgebase - Home to access the PCI Knowledge Base.
For more information on the ArcSight PCI Protection Suite, please visit ArcSight :: Products :: Compliance.
newsprovider is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Spurl this Post!Reddit!
Reply With Quote
   


   
Post New Thread Reply


Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On
Forum Jump


All times are GMT -8. The time now is 01:04 PM.

Powered by vBulletin® Version 3.7.2
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Search Engine Friendly URLs by vBSEO 3.2.0

DMCA Policy

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102 103 104 105 106 107 108 109 110 111 112 113 114 115 116 117 118 119 120 121 122 123 124 125 126 127 128 129 130 131 132 133 134 135 136 137 138 139 140 141 142 143 144 145 146 147 148 149 150 151 152 153 154 155 156 157 158 159 160 161 162 163 164 165 166 167 168 169 170 171 172 173 174 175 176 177 178 179 180 181 182 183 184 185 186 187 188 189 190 191 192 193 194 195 196 197 198 199 200 201 202 203 204 205 206 207 208 209 210 211 212 213 214 215 216 217 218 219 220 221 222 223 224 225 226 227 228